Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 07:59:19.380 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46344 12 6556 1 2025-11-30 08:00:02.276 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:00:01.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:00:01.948 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:00:02.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:00:01.931 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:00:19.788 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-11-30 08:01:20.193 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38314 10 6452 1 2025-11-30 07:58:08.562 00:05:02.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 07:58:08.559 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:02:20.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6452 1 2025-11-30 08:03:21.002 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:59530 10 6452 1 2025-11-30 08:04:21.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52850 10 6452 1 2025-11-30 08:05:02.135 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:05:02.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:05:02.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:05:02.053 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:05:02.233 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:05:21.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43786 10 6452 1 2025-11-30 08:06:22.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-11-30 08:07:22.578 00:00:11.144 TCP 1.101.0.1:3000 -> 23.104.0.1:54460 10 6452 1 2025-11-30 08:04:08.560 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:04:08.563 00:05:02.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:08:23.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56690 10 6452 1 2025-11-30 08:09:24.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56270 10 6452 1 2025-11-30 08:10:02.559 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:10:02.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:10:02.302 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:10:02.477 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:10:02.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:10:24.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 2025-11-30 08:11:24.991 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37786 10 6452 1 2025-11-30 08:12:25.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46490 10 6452 1 2025-11-30 08:13:25.804 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57266 10 6452 1 2025-11-30 08:10:08.564 00:05:02.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:10:08.563 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:14:26.222 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-11-30 08:15:02.203 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:15:02.444 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:15:02.398 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:15:02.379 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:15:02.480 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:15:26.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-11-30 08:16:27.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60768 10 6452 1 2025-11-30 08:17:27.433 00:00:10.713 TCP 1.101.0.1:3000 -> 23.104.0.1:57376 12 6556 1 2025-11-30 08:18:28.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41724 10 6452 1 2025-11-30 08:19:28.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58550 10 6452 1 2025-11-30 08:20:02.359 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:20:02.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:20:02.439 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:20:02.432 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:20:02.522 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:16:08.563 00:05:02.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:16:08.566 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:20:28.988 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36534 10 6452 1 2025-11-30 08:21:29.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47228 10 6452 1 2025-11-30 08:22:29.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58914 10 6452 1 2025-11-30 08:23:30.202 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34102 10 6452 1 2025-11-30 08:24:30.565 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36372 10 6452 1 2025-11-30 08:25:02.766 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:25:02.532 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:25:02.812 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:25:02.685 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:25:02.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:25:30.987 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53320 10 6452 1 2025-11-30 08:22:08.567 00:05:02.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:22:08.569 00:05:02.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:26:31.407 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:56858 10 6452 1 2025-11-30 08:27:31.795 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54226 10 6452 1 2025-11-30 08:28:32.204 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 10 6452 1 2025-11-30 08:29:32.609 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35190 10 6452 1 2025-11-30 08:30:02.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:30:02.565 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:30:02.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:30:02.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:30:02.567 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:30:33.016 00:00:14.570 TCP 1.101.0.1:3000 -> 23.104.0.1:33082 10 6452 1 2025-11-30 08:31:37.663 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36682 10 6452 1 2025-11-30 08:28:08.570 00:05:02.089 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:28:08.572 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:32:38.037 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41528 10 6452 1 2025-11-30 08:33:38.453 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34636 10 6452 1 2025-11-30 08:34:38.816 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53730 10 6452 1 2025-11-30 08:35:02.671 00:00:00.016 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:35:02.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:35:02.671 00:00:00.016 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:35:02.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:35:02.754 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:35:39.223 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34256 10 6452 1 2025-11-30 08:36:39.586 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-11-30 08:37:39.947 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46134 10 6452 1 2025-11-30 08:34:08.573 00:05:02.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:34:08.575 00:05:02.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:38:40.357 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34836 10 6452 1 2025-11-30 08:39:40.720 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37148 10 6452 1 2025-11-30 08:40:03.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:40:02.819 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:40:02.833 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:40:02.942 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:40:02.753 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:40:41.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51266 10 6452 1 2025-11-30 08:41:41.519 00:00:10.969 TCP 1.101.0.1:3000 -> 23.104.0.1:34742 10 6452 1 2025-11-30 08:42:42.519 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33836 10 6452 1 2025-11-30 08:43:42.928 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48220 10 6452 1 2025-11-30 08:40:08.578 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:40:08.575 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:44:43.355 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-11-30 08:45:02.732 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:45:03.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:45:03.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:45:02.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:45:03.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:45:43.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59410 10 6452 1 2025-11-30 08:46:44.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-30 08:47:44.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41124 10 6452 1 2025-11-30 08:48:44.955 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34054 10 6452 1 2025-11-30 08:49:45.321 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48684 10 6452 1 2025-11-30 08:50:03.209 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:50:03.078 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:50:02.944 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:50:03.126 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:50:02.844 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:46:08.577 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:46:08.579 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:50:45.689 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6452 1 2025-11-30 08:51:46.121 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47844 10 6452 1 2025-11-30 08:52:46.529 00:00:10.754 TCP 1.101.0.1:3000 -> 23.104.0.1:40898 12 6556 1 2025-11-30 08:53:47.321 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48768 10 6452 1 2025-11-30 08:54:47.684 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-11-30 08:55:03.186 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-30 08:55:03.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-30 08:55:03.033 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:55:03.104 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-30 08:55:03.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-30 08:55:48.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59858 10 6452 1 2025-11-30 08:52:08.582 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-30 08:52:08.579 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-30 08:56:48.506 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38672 10 6452 1 2025-11-30 08:57:48.919 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54646 10 6452 1 Summary: total flows: 139, total bytes: 410860, total packets: 1016, avg bps: 915, avg pps: 0, avg bpp: 404 Time window: 2025-11-30 07:58:08 - 2025-11-30 08:57:59 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0022s Wall: 0.0029s flows/second: 47329.8 Runtime: 0.0030s